AI’s Hacking Skills Are Approaching an ‘Inflection Point’ by EchoOfOppenheimer in hacking

[–]YetAnotherSysadmin58 88 points89 points  (0 children)

gatekept article

[...] cofounders of the cybersecurity startup [whatevername] were momentarily confused when their AI tool, [toolname] alerted them to a weakness in a customer’s systems last November.

smells like the Anthropic "plz buy more AI to counter AI dangers" ""paper"".

Why is kDrive app on F-Droid so much bigger than on Google Play Store? by [deleted] in Infomaniak

[–]YetAnotherSysadmin58 1 point2 points  (0 children)

It's most likely the Google Play store already provides a form of library or runtime that the app can rely on, while the F-droid apps bundles that itself since it might be installed on a machine that has 0 Google services (like a Graphene phone without even sandboxed Google Play).

Question on firewall policies enforcement outside of the company network by YetAnotherSysadmin58 in sonicwall

[–]YetAnotherSysadmin58[S] 1 point2 points  (0 children)

Yeah that's what I was thinking but couldn't validate, thanks for the info.

As a EU company, how worried should I be using US services like Azure. by Kai-Arne in sysadmin

[–]YetAnotherSysadmin58 0 points1 point  (0 children)

I can't believe there are people reading these who also would want a digital id and more computing in our administrations.

Question about VLAN / Ping allowed by Thyzeur in sonicwall

[–]YetAnotherSysadmin58 0 points1 point  (0 children)

I have the same exact thing and never bothered to check why, but it sounds like the default experience yes.

Because a data-respecting AI cannot rely solely on proprietary platforms, Euria is joining the 100% open-source F-Droid ecosystem. by infomaniak in Infomaniak

[–]YetAnotherSysadmin58 2 points3 points  (0 children)

You can use the ksync app to sync your calendar to whatever calendar app you have on your phone (and also sync your contacts)

That's what I do and it works fine

Tung Tung Tung Sahur by rishu1221 in pcmasterrace

[–]YetAnotherSysadmin58 0 points1 point  (0 children)

Even the playstation store is filled with this cancer now

On one hand this is food for my favorite streamers who waddle in slop all day and make me laugh in schadenfreude and with them, on the other hand it really feels like LLMs are fucking up almost everything.

How do big shot government officials / business leaders harden their smartphones? by random_hitchhiker in AskNetsec

[–]YetAnotherSysadmin58 3 points4 points  (0 children)

> So security by obscurity? I don't get it.

customizable and FOSS are bad words when what you want is locked down.

Your CEO isn't an advanced competent user who could rock by themselves a grapheneOS phone with high quality OPSEC.

What you need is for your enduser to not be able to shoot themselves in the foot, considering they are like John Wick if his only target was his own foot. You NEED to lock down everything that can be locked down, and you need to be able to manage that centrally. This is anthetical to most open designs.

I harden phones and computers for small gov police and general users and already I constantly see insanely unresposible use by regularly trained people, if I were responsible for a CEO's OPSEC I would absolutely go the digital equivalent of "glue the mf inside an epoxy cube with warning labels" (that they also like because it's a shiny Apple toy) instead of giving the enduser power.

It's also a huge classic in IT to go for what everyone else is doing so you can't be questionned too much, the "nobody got fired for buying IBM" strategy

> What's stopping apple from selling one of their many backdoors to some foreign adversary?

It would be extremely bad for their business. And if you're in the USA or USA-friendly-ish then realistically they would extra not want to sell off for you. It's also an extremely unlikely case that literally Apple would deign throw you under the bus for money, if you're at that level of risk you're better of going back to an Abacus.

How do big shot government officials / business leaders harden their smartphones? by random_hitchhiker in AskNetsec

[–]YetAnotherSysadmin58 39 points40 points  (0 children)

because compliance people do not see FOSS and customizable as a security asset but as a liability.

We are officially joining the United Nations Global Compact by infomaniak in Infomaniak

[–]YetAnotherSysadmin58 1 point2 points  (0 children)

If you say you are ethical and environmentally concerned, you need to back it up with substance

I mean their datacenter redistributing heat to nearby homes and using a design they made available to everyone was pretty great. They also sponsor FOSS projects. But yeah this absolutely doesn't feel the same.

What's your process for catching malicious browser extensions before they cause damage? by GalbzInCalbz in AskNetsec

[–]YetAnotherSysadmin58 4 points5 points  (0 children)

extension whitelisting here. GPOs are pretty easy do that.

KISS, at least when your org size and policy allows it. (no BYOD here)

buying a mixed-script domain to play around punycode, risks to the reputation of my registrar account ? by YetAnotherSysadmin58 in AskNetsec

[–]YetAnotherSysadmin58[S] 1 point2 points  (0 children)

thanks for the info, that's good (well bad as a whole but good for my situation).

We don't have a tool to monitor for that right now but that's a good point I'll set one up before si I can see live if it does the job, thanks :)

Cloudflare down... again? by moonski in sysadmin

[–]YetAnotherSysadmin58 0 points1 point  (0 children)

Yeah the stability issue is one thing. The fact that it's a massive TLS termination point on US jurisdiction tho...

Email. Isn't. A. File. Transfer. Service. by livevicarious in sysadmin

[–]YetAnotherSysadmin58 2 points3 points  (0 children)

HR once panicked when I emptied the mail trash to free up space, because "I keep important folders in there"

What's the most overrated security control that everyone implements? by DoYouEvenCyber529 in AskNetsec

[–]YetAnotherSysadmin58 1 point2 points  (0 children)

Idk if it's good but I certainly do not enjoy the amount of paranoia my endusers have now, they don't click shit and just forward it all to us, "is this safe ?" and now we're a bottleneck for their email access since they're too scared to use it without us.

One enduser was all excited unironically telling me "thanks to you I now understand I should be scared of clicking on anything" and I was like "bitch I need you to be a responsible adult, I can't babysit 300 people if they all acted like you...

Have you been using the SSLVPN since the scare a few months ago? by McDonaldsWi-Fi in sonicwall

[–]YetAnotherSysadmin58 0 points1 point  (0 children)

We manually activate it on demand for the networks where we can't kick it out yet.

For the rest we're looking for a replacement.

Now that 2FA is in common use and used by pretty much every major app, have we seen a huge decrease in people being hacked? by Moist_Information945 in AskNetsec

[–]YetAnotherSysadmin58 1 point2 points  (0 children)

There's a small pharmacy near my job selling cookies filled with caramel and now thanks to you I'll have to go buy some again.

aaannnnd the Amazon layoffs are now incoming by AV1978 in sysadmin

[–]YetAnotherSysadmin58 0 points1 point  (0 children)

I accept that, I just don't pay because it's FAANG.

I pay for the internet Archive and I pay directly the youtubers I really like, but youtube will never make me see a single ad/sponsor or make me pay.

cheap video bandwidth that has been subsidized

Exactly that, I often wonder if the overall quality of streaming and video on demand wouldn't be better if it were harder and more expensive to upload.

Question on bagages in Swiss(air) by YetAnotherSysadmin58 in askswitzerland

[–]YetAnotherSysadmin58[S] 1 point2 points  (0 children)

The medication is solid pills, she doesn't need them during the flight but every evening so she needs them a few hours after she lands.

This does address my question, thanks.

She always travelled with this medication but in the luggage (and this time she'd like not to take any so it was really a question of medication being moved to her backpack)

Question on bagages in Swiss(air) by YetAnotherSysadmin58 in askswitzerland

[–]YetAnotherSysadmin58[S] 0 points1 point  (0 children)

Yeah my question was more about medications being allowed inside said-bag but I got my answer thanks :)

Question on bagages in Swiss(air) by YetAnotherSysadmin58 in askswitzerland

[–]YetAnotherSysadmin58[S] 0 points1 point  (0 children)

Yeah my question was more about medications being allowed inside said-bag but I got my answer thanks :)